Cross-site scripting (XSS) vulnerability in page.php in in Siteframe Beaumont, possibly 5.0.2 or 5.0.1a, allows remote attackers to inject arbitrary web script or HTML via the comment_text parameter to the user comment page (/edit/Comment).
Name | Vendor | Start Version | End Version |
---|---|---|---|
Siteframe_beaumont | Siteframe | 5.0.1 (including) | 5.0.1 (including) |
Siteframe_beaumont | Siteframe | 5.0.1a (including) | 5.0.1a (including) |
Siteframe_beaumont | Siteframe | 5.0.2 (including) | 5.0.2 (including) |